keyiso.dll
Description: CNG Key Isolation Service
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5007
Architecture: 64-bit
Operating System: Windows NT
SHA256: cb0d9ea8fd70e0c93298abdef742460c
File Size: 92.0 KB
Uploaded At: Dec. 1, 2025, 7:31 a.m.
Views: 5
Exported Functions
- KeyIsoServiceMain (Ordinal: 1, Address: 0x4830)
- KeyIsoSetAuditingInterface (Ordinal: 2, Address: 0x15c14)
Imported DLLs & Functions
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180012048)
- SetLastError (Address: 0x180012050)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180012060)
- DuplicateHandle (Address: 0x180012068)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180012078)
- LocalFree (Address: 0x180012080)
api-ms-win-core-libraryloader-l1-2-0.dll
- FreeLibrary (Address: 0x1800120b0)
- GetModuleFileNameW (Address: 0x180012098)
- GetModuleHandleExW (Address: 0x180012090)
- GetProcAddress (Address: 0x1800120a8)
- LoadLibraryExW (Address: 0x1800120a0)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x1800120c0)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1800120e0)
- GetCurrentThread (Address: 0x1800120d8)
- OpenProcessToken (Address: 0x1800120d0)
- OpenThreadToken (Address: 0x1800120e8)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x180012108)
- RegOpenKeyExW (Address: 0x180012100)
- RegQueryValueExW (Address: 0x1800120f8)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x180012158)
- AcquireSRWLockShared (Address: 0x180012150)
- CreateEventW (Address: 0x180012140)
- DeleteCriticalSection (Address: 0x180012148)
- EnterCriticalSection (Address: 0x180012138)
- InitializeCriticalSection (Address: 0x180012128)
- InitializeSRWLock (Address: 0x180012160)
- LeaveCriticalSection (Address: 0x180012130)
- ReleaseSRWLockExclusive (Address: 0x180012120)
- ReleaseSRWLockShared (Address: 0x180012168)
- SetEvent (Address: 0x180012118)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x180012178)
api-ms-win-security-base-l1-1-0.dll
- DuplicateTokenEx (Address: 0x180012198)
- EqualSid (Address: 0x1800121a0)
- GetTokenInformation (Address: 0x180012188)
- IsWellKnownSid (Address: 0x180012190)
api-ms-win-security-capability-l1-1-0.dll
- CapabilityCheck (Address: 0x1800121b0)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x1800121d0)
- ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1800121c8)
- ConvertStringSidToSidW (Address: 0x1800121c0)
api-ms-win-service-core-l1-1-0.dll
- RegisterServiceCtrlHandlerExW (Address: 0x1800121e0)
- SetServiceStatus (Address: 0x1800121e8)
bcrypt.dll
- BCryptDestroyKey (Address: 0x180012210)
- BCryptExportKey (Address: 0x180012218)
- BCryptFinalizeKeyPair (Address: 0x1800121f8)
- BCryptFreeBuffer (Address: 0x180012200)
- BCryptGenerateKeyPair (Address: 0x180012220)
- BCryptResolveProviders (Address: 0x180012208)
CRYPTBASE.dll
- SystemFunction040 (Address: 0x180011fd0)
ncrypt.dll
- NCryptFreeObject (Address: 0x180012238)
- NCryptImportKey (Address: 0x180012248)
- NCryptOpenStorageProvider (Address: 0x180012230)
- NCryptSetProperty (Address: 0x180012240)
ntdll.dll
- __C_specific_handler (Address: 0x180012270)
- _wcsicmp (Address: 0x1800122e8)
- EtwGetTraceEnableFlags (Address: 0x180012340)
- EtwGetTraceEnableLevel (Address: 0x180012288)
- EtwGetTraceLoggerHandle (Address: 0x180012278)
- EtwRegisterTraceGuidsW (Address: 0x180012290)
- EtwTraceMessage (Address: 0x180012280)
- EtwUnregisterTraceGuids (Address: 0x180012330)
- LdrDisableThreadCalloutsForDll (Address: 0x1800122a8)
- memcpy (Address: 0x180012348)
- memset (Address: 0x1800122b0)
- NtAdjustPrivilegesToken (Address: 0x180012268)
- NtClose (Address: 0x180012338)
- NtOpenProcess (Address: 0x180012328)
- NtQueryInformationToken (Address: 0x1800122f8)
- NtTerminateProcess (Address: 0x180012320)
- RtlAllocateHeap (Address: 0x1800122c8)
- RtlCaptureContext (Address: 0x180012318)
- RtlCompareUnicodeString (Address: 0x1800122e0)
- RtlDeleteCriticalSection (Address: 0x1800122a0)
- RtlEnterCriticalSection (Address: 0x180012258)
- RtlFreeHeap (Address: 0x1800122d8)
- RtlInitializeCriticalSection (Address: 0x180012308)
- RtlInitUnicodeString (Address: 0x1800122f0)
- RtlIsMultiSessionSku (Address: 0x180012300)
- RtlLeaveCriticalSection (Address: 0x180012298)
- RtlLookupFunctionEntry (Address: 0x180012310)
- RtlNtStatusToDosError (Address: 0x180012260)
- RtlSizeHeap (Address: 0x1800122d0)
- RtlUnhandledExceptionFilter (Address: 0x1800122b8)
- RtlVirtualUnwind (Address: 0x1800122c0)
- wcscmp (Address: 0x180012350)
RPCRT4.dll
- I_RpcBindingInqLocalClientPID (Address: 0x180012010)
- NdrServerCall2 (Address: 0x180012030)
- NdrServerCallAll (Address: 0x180012038)
- RpcBindingVectorFree (Address: 0x180012008)
- RpcEpRegisterW (Address: 0x180011fe8)
- RpcEpUnregister (Address: 0x180011ff0)
- RpcImpersonateClient (Address: 0x180012020)
- RpcRevertToSelf (Address: 0x180012018)
- RpcServerInqBindings (Address: 0x180011fe0)
- RpcServerRegisterIf3 (Address: 0x180012028)
- RpcServerUnregisterIfEx (Address: 0x180012000)
- RpcServerUseProtseqW (Address: 0x180011ff8)